Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

BlueKeep attacks are happening, but it's not a worm
ZD Net ^ | 3 Nov 2019 | Catalin Cimpanu

Posted on 11/03/2019 7:47:14 AM PST by DUMBGRUNT

click here to read article


Navigation: use the links below to view more comments.
first previous 1-2021-32 last
To: Openurmind; SgtHooper
Cookies are not becoming “smarter.”

Scripts and vulnerabilities are the problem. Exploits take advantage of unpatched vulnerabilities.

A lot of the benefit Openurmind talks to with Linux could be approximated by logging into your Windows computer through a non-Administrator-equivalent user account. You can make one of these accounts in the User Accounts area in Windows.

21 posted on 11/03/2019 6:42:53 PM PST by ConservativeMind (Trump: Befuddling Democrats, Republicans, and the Media for the benefit of the US and all mankind.)
[ Post Reply | Private Reply | To 11 | View Replies]

To: daniel1212
> As long as you have all your Windows 95 Patches installed you should be fine!

I know you’re just joking. But actually, I suspect this malware could not affect/infect Win95 anyway, since it’s not NT-based.

22 posted on 11/03/2019 7:12:35 PM PST by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government."`)
[ Post Reply | Private Reply | To 19 | View Replies]

To: dayglored
I know you’re just joking. But actually, I suspect this malware could not affect/infect Win95 anyway, since it’s not NT-based.

That is one positive, along with USB support in OSR2! To the tune of "Oh our old Lasalle ran great," read with rose-colored glasses.


23 posted on 11/04/2019 4:06:49 AM PST by daniel1212 ( Trust the risen Lord Jesus to save you as a damned and destitute sinner + be baptized + follow Him)
[ Post Reply | Private Reply | To 22 | View Replies]

To: daniel1212
Ah, yes. But I admit I have an inordinate fondness for the t-shirt version:


24 posted on 11/04/2019 5:51:45 AM PST by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government."`)
[ Post Reply | Private Reply | To 23 | View Replies]

To: ConservativeMind; SgtHooper

I stand corrected to a point. When I say cookies are getting smarter I speak of tracking cookies that can infect your browser while in use, such as tracking cookies. Scripts and exploits are indeed the problem, especially “drive by downloads”. Which goes back to my original well intentioned and correct premise that clearing cookies, and blocking cookies, does not protect you from the scripts. Only a good script blocker can do this, and daily they figure out ways to get around even these. Now and then the script count doesn’t always add up to the same number of scripts blocked in my blocker list, this means while my blocker does count them, it doesn’t see them or who they are associated with and does not give any options with these. At least they are being block by default, I think...? They are hidden so I’m not sure.

Your suggestion to use a different account in windows is great, I wonder how come it is not more prevalent as common knowledge and practiced more especially for surfing. But I wonder how many will actually make the effort to switch back and forth as needed? I still like the linux concept that one has to root into a whole different isolated partition. I like having three different partitions keeping everything isolated away from each other rather than everything on one partition as default like windows. For myself this is the huge difference in system security. I also like not needing an antivirus at all.

But I have a curiosity because I really don’t know if you don’t mind? But if you are logged in a non-admin account in windows is it absolutely secure? Probably not a good idea to access the shared folders and downloaded files from admin? Just curious so that I can add it to my limited knowledge base and help friends who have windows. :)


25 posted on 11/04/2019 6:05:40 AM PST by Openurmind (The ultimate test of a moral society is the kind of world it leaves to its children. ~ D. Bonhoeffer)
[ Post Reply | Private Reply | To 21 | View Replies]

To: DUMBGRUNT
the hackers appear to search for Windows systems with RDP ports left exposed on the internet,


26 posted on 11/04/2019 6:08:59 AM PST by McGruff (Does no one is above the law apply to Democrats?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dayglored
So everybody who still has a Windows XP, Windows 7, or god forbid Windows Vista computer around -- PATCH IT!

Sadly, you can't patch XP and Vista anymore, and it's getting close to the point where you won't be able to patch Win7 either. Best to move off to a real operating system. Linux Mint is friendly enough for many folks.

27 posted on 11/04/2019 6:38:04 AM PST by zeugma (I sure wish I lived in a country where the rule of law actually applied to those in power.)
[ Post Reply | Private Reply | To 17 | View Replies]

To: Openurmind; SgtHooper

This is a reasonable article on this matter:

“To be successful, malware and other security exploits frequently leverage the powers of highly privileged Windows user accounts. It’s not entirely a shock, then, that a new report reveals that 86 percent of all Windows security threats patched in 2015 would have been stopped or rendered toothless if they had attacked users who were using limited, rather than administrator, accounts, and hence lacked the power to install, modify or delete software.“

How to Set Up Limited User Accounts in Windows 10
https://www.laptopmag.com/articles/limited-user-accounts-windows-10


28 posted on 11/04/2019 7:18:46 AM PST by ConservativeMind (Trump: Befuddling Democrats, Republicans, and the Media for the benefit of the US and all mankind.)
[ Post Reply | Private Reply | To 25 | View Replies]

To: Openurmind; SgtHooper
Cookies are a method for tracking you. Others methods are from the fingerprint of your browser and reported system and of your external IP address. Additionally, ISP’s can ascertain and map the “likely you” from your DNS queries and the web pages you always request (“Hmm, there is only one person in your city that always looks at the same five sites (including Free Republic) every other day. That person must now be on vacation in Miami because that webpage combination has not been requested from where it usually is and is now showing up on Verizon in the Miami area.”)

Remember, the ISC knows your external IP address, your name and physical address and can sell this information to others.

29 posted on 11/04/2019 7:31:23 AM PST by ConservativeMind (Trump: Befuddling Democrats, Republicans, and the Media for the benefit of the US and all mankind.)
[ Post Reply | Private Reply | To 25 | View Replies]

To: ConservativeMind; SgtHooper

Thank you for sharing that, I can’t believe that so many are not hip to this. while it might be slightly inconvenient it is well worth the extra effort to practice it. I still run into people who are annoyed with needing to password with everything in linux. But to be safer it really is worth the extra effort in both cases.

I’m still curious though if you don’t mind, maybe I missed it, but would there be any vulnerabilities from accessing and using the guest account downloaded shared folders and files from admin? Or would it be a good practice to just not do this?


30 posted on 11/04/2019 8:53:03 AM PST by Openurmind (The ultimate test of a moral society is the kind of world it leaves to its children. ~ D. Bonhoeffer)
[ Post Reply | Private Reply | To 29 | View Replies]

To: zeugma
> Sadly, you can't patch XP and Vista anymore,...

True in general, however Microsoft issued out-of-band, way-past-EOL patches for XP and Vista, specifically for BlueKeep, in May 2019.

https://msrc-blog.microsoft.com/2019/05/14/prevent-a-worm-by-updating-remote-desktop-services-cve-2019-0708/

"...Out-of-support systems include Windows 2003 and Windows XP. If you are on an out-of-support version, the best way to address this vulnerability is to upgrade to the latest version of Windows. Even so, we are making fixes available for these out-of-support versions of Windows in KB4500705..."

KB4500705

That page provides patches for XP, Vista, and the associated releases of Windows Server.

31 posted on 11/04/2019 9:48:18 AM PST by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government."`)
[ Post Reply | Private Reply | To 27 | View Replies]

To: dayglored
True in general, however Microsoft issued out-of-band, way-past-EOL patches for XP and Vista, specifically for BlueKeep, in May 2019.

HA! Didn't know that. Thanks! (not that I have any XP/Vista still hanging around)

32 posted on 11/05/2019 9:35:49 AM PST by zeugma (I sure wish I lived in a country where the rule of law actually applied to those in power.)
[ Post Reply | Private Reply | To 31 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-32 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson